From: Adolf Belka <adolf.belka@ipfire.org>
To: development@lists.ipfire.org
Cc: Adolf Belka <adolf.belka@ipfire.org>
Subject: [PATCH] iperf3: Update to version 3.22
Date: Fri, 2 Oct 2026 13:23:24 +0200 [thread overview]
Message-ID: <20261002112330.3568361-7-adolf.belka@ipfire.org> (raw)
In-Reply-To: <20261002112330.3568361-1-adolf.belka@ipfire.org>
- Update from version 3.21 to 3.22
- No change in rootfile
- 4 CVE fixes
- Changelog
3.22
* Security notes
* Thanks to Claude and Ada Logics for finding and reporting two
potential security vulnerabilities. One is a remote
use-after-free in iperf_server_api.c (ANT-2026-E5BA80X9 /
CVE-2026-101283) and the other is a heap buffer overflow in
iperf_auth.c (ANT-2026-FXH14FHV / CVE-2026-101276).
* Thanks to Justin Stitt for reporting and fixing a heap-buffer
overflow was fixed in iperf_auth.c (PR #2027).
* Thanks to Ravindu Lakmina Munaweera (Github: @Ravi-lk) for
reporting and fixing a DOS infinite-loop (CVE-2026-102253).
* Thanks to Dirk Müller for finding and reporting an issue with
test parameters (PR #2039, CVE-2026-71217).
* The iperf-3.18 release notes were updated to reflect that a code
change in that version addresses CVE-2026-71218.
* Notable user-visible changes
* Attempting to set zero parallel streams is no longer allowed (PR
#2048).
* Zerocopy and rx-copy are now allowed in the case of reverse
direction tests and the server (sending side) supports these
features but the client (receiving side) does not (#2045,
PR #2044).
* The limit on GSO_MAX_DG_IN_BF was fixed to limit the number of segments
to the maximum allowed (#2032 / PR #2033). This change unbreaks
GSO for small message sizes.
* Notable developer-visible changes
* In iperf_auth.c, in addition to fixing the heap buffer overflow, the
return value of several functions is checked (PR #2046, PR #2040).
* Several file descriptor leaks have been fixed (PR #2034).
* In iperf_tcp, connections now timeout to prevent a race condition in
accepting new connections to avoid a deadlock (#2029, PR #2030).
* Periodic timers are now cancelled at the end of a test (#2018,
PR #2021).
* DSCP/TOS is now correctly set in the first UDP/TCP stream packet
(#510, #830, PR #2047).
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
---
lfs/iperf3 | 6 +++---
1 file changed, 3 insertions(+), 3 deletions(-)
diff --git a/lfs/iperf3 b/lfs/iperf3
index 7c4095ed9..01b0f3252 100644
--- a/lfs/iperf3
+++ b/lfs/iperf3
@@ -26,7 +26,7 @@ include Config
SUMMARY = A tool to measure network performance
-VER = 3.21
+VER = 3.22
THISAPP = iperf-$(VER)
DL_FILE = $(THISAPP).tar.gz
@@ -34,7 +34,7 @@ DL_FROM = $(URL_IPFIRE)
DIR_APP = $(DIR_SRC)/$(THISAPP)
TARGET = $(DIR_INFO)/$(THISAPP)
PROG = iperf3
-PAK_VER = 9
+PAK_VER = 10
DEPS =
@@ -51,7 +51,7 @@ objects = $(DL_FILE)
$(DL_FILE) = $(DL_FROM)/$(DL_FILE)
-$(DL_FILE)_BLAKE2 = 696a13caaa5cf52a69c65566ae4d2d8788a4225d689d32e73306f5174dad141c92ea3acdda9a929803a1e57eee6844350be2da749e5f44c48bf0ab7890e97745
+$(DL_FILE)_BLAKE2 = 1e06b7faca73002b760dba4bab1349140970daaa427e46a2ac5b96030494b6465e6875d58f550283e608bfcdcea76a13857d3b2d69f46a8bb78cfe0964ee95b2
install : $(TARGET)
check : $(patsubst %,$(DIR_CHK)/%,$(objects))
--
2.55.0
next prev parent reply other threads:[~2026-10-02 11:23 UTC|newest]
Thread overview: 13+ messages / expand[flat|nested] mbox.gz Atom feed top
2026-10-02 11:23 [PATCH] core205: Ship gdb Adolf Belka
2026-10-02 11:23 ` [PATCH] core205: Ship libpng Adolf Belka
2026-10-02 11:23 ` [PATCH] core205: Ship pam Adolf Belka
2026-10-02 11:23 ` [PATCH] freeradius: Update to version 3.2.10 Adolf Belka
2026-10-02 11:23 ` [PATCH] gdb: Update to version 18.1 Adolf Belka
2026-10-02 11:23 ` [PATCH] git: Update to version 2.56.0 Adolf Belka
2026-10-02 11:23 ` Adolf Belka [this message]
2026-10-02 11:23 ` [PATCH] libpng: Update to version 1.6.59 Adolf Belka
2026-10-02 11:23 ` [PATCH] ntfs-3g: Update to version 2026.9.28 Adolf Belka
2026-10-02 11:23 ` [PATCH] pam: Update to version 1.7.3 Adolf Belka
2026-10-02 11:23 ` [PATCH] pcre2: Update to version 10.49 Adolf Belka
2026-10-02 11:23 ` [PATCH] shairport-sync: Update to version 5.5.2 Adolf Belka
2026-10-02 11:23 ` [PATCH] swtpm: Update to version 0.10.2 Adolf Belka
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20261002112330.3568361-7-adolf.belka@ipfire.org \
--to=adolf.belka@ipfire.org \
--cc=development@lists.ipfire.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox